Fixes subtle bug which may lead to infinite loops in some cases

Mar 12, 2012 13:18 GMT  ·  By

The lack of release candidates for version 2.3.4 of NoScript is a clear indication that the developer rushed with this revision, in order to take care of an uncovered bug. In this case there was a ClearClick-related issue which would lead to infinite loops.

On the other hand, version 2.3.3 of the plugin was a calculated move, which benefited from six release candidates before reaching the stable stage of development. The modifications operated include improved InjectionChecker logging and protection against partial obscuration via Flash objects.

A hefty set of fixes are also on the list, among which reduction of false positive rate on HTML injection checks and XSS (cross-site scripting) sensitivity tweaks, for improved detection. You can check the full set of changes on this page.

NoScript is available for download from this link.